CVE-1999-0723
CVSS 2.0 Score 7.1 of 10 (high)
Details
Summary
CVE-1999-0723 is a denial-of-service vulnerability affecting the Windows NT Client Server Runtime Subsystem (CSRSS). When all worker threads in CSRSS are waiting for user input, the system becomes susceptible to a denial-of-service attack. An attacker can exploit this vulnerability by sending input requests to the subsystem, causing it to become unresponsive and preventing legitimate users from accessing the system. This issue can lead to significant downtime and impact productivity. Microsoft released a patch to address this vulnerability, and it is recommended that all affected systems be updated to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Windows NT
- Microsoft Windows 2000
Affected Vendors
- Microsoft